Description
WordPress Plugin No Follow All External Links is injecting spam into the website's content, thus publicizing content to normal site visitors or to search engines without the authorization of the website's owner. WordPress Plugin No Follow All External Links version 2.3.0 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
WordPress Plugin post highlights 'ph_settings.php' SQL Injection (2.2)
WordPress Plugin Buddypress Component Stats Local File Inclusion (1.0)
Dotclear Other Vulnerability (CVE-2006-3938)
WordPress Plugin Homepage SlideShow Arbitrary File Upload (2.3)
WordPress Plugin Community Events 'id' Parameter SQL Injection (1.2.2)